The Register Home Page

back to article Legacy Lenovo login opens 5,000 Dropbox accounts to attackers

Dropbox has warned around 5,000 users that attackers compromised their accounts by abusing a legacy Lenovo login integration. In an email sent to affected customers, the cloud storage biz said attackers exploited an integration that allowed users to access Dropbox using Lenovo IDs. Dropbox blamed "an issue with Lenovo's email …

  1. Tron Silver badge

    The absence of 2FA wasn't the problem.

    Just a convenient and oft-used scapegoat to deflect some blame. The problem was users accessing their service without a password.

    1. IGotOut Silver badge

      Re: The absence of 2FA wasn't the problem.

      The users fault?

      "an issue with Lenovo's email verification process," which allowed attackers to register Lenovo IDs using Dropbox users' email addresses "

      Sound more like Mega Corps fault to me.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon